Lucene search

K
fortinetFortiGuard LabsFG-IR-22-432
HistoryApr 11, 2023 - 12:00 a.m.

FortiAnalyzer - Improper input validation in custom dataset

2023-04-1100:00:00
FortiGuard Labs
www.fortiguard.com
24
fortianalyzer
vulnerability
cwe-20
file system
sql queries
improper input validation
authenticated attacker

EPSS

0

Percentile

9.0%

An improper input validation vulnerability [CWE-20] in FortiAnalyzer may allow an authenticated attacker to disclose file system information via custom dataset SQL queries.

EPSS

0

Percentile

9.0%

Related for FG-IR-22-432